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@ Method of protecting electronically published materials using cryptographic protocols. 

(Sj) The present invention is a method of protect- 
ing electronicatly published documents. It invot- pj^. 2 
ves operating a computer system and network 
(9) for electronic publication of documents, 
including the steps of : a) receiving requests for 
documents from a plurality of users (117) hav- 
ing computers with display devices (121) or 
printers (123), including with the requests un- 
ique user identification for each of the plurality 
of users ; b) authenticating the requests from 
the plurality of users with a copyright server (7) ; 
c) using the copyright server to direct a docu- 
ment server (3) to act upon proper authenti- 
cation of each request; d) in response to 
direction from the copyright server, using a 
document server (7) to create uniquely en- 
coded, compressed and encrypted documents 
for each authenticated requesi the documents 
having unique encoding con^esponding to each 
of the plurality of users, and forwarding the 
documents to each authenticated request user 
throjgh the network (9) to corresponding 
agents of each authentrcated request user, each 
of the agents being selected from display 
agents (111) and printer agents (113); and, e) 
decrypting and uncompressing the documents 
at each of the agents and making the docu- 
ments available for use only In response to 
receiving con'ect secret keys provided by the 
authentk^ted request user to the agents. Ttiese 
agents are either pre-installed as software into 
each of the plurality of users' computers, pra- 
installed as hardware or fimrtware into user 
hardware selected from display devk:es and 
printers, or are software programs transmitted 
at the tin>e of use. 
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1 EPO 

FIELD OF THE INVENTION 

The present Invention relates to methods of pro- 
tecting electronicalty published materials using cryp- 
tographic protocols. The invention also utilizes spe- 
cial "agents" of software or hardware to have individ- 
ual requlrementsfor display devices and/or printers to 
effect decryption and display or printing of the docu- 
ments. These methods are directed to Inhibiting illidt 
republication or copying of electronically published 
documents. 

INFORMATION DISCLOSURE STATEMENT 

Cryptography and Identity Verification have 
been described in the prior art in conjunction wfth 
computer transmissions through networks, For ex- 
ample, United States Patent No. 4,393,269 describes 
a method of incorporating a one-way sequence for 
transaction and identity verification and United 
States Patent No. 4,995,082 sets forth a method of 
identifying subscribers and for generating and verify- 
ing electronic signatures in data exchange systems. 
United States Patent No. 5,144,665 describes a cryp- 
tographic communication method and system. Al- 
though these patents use cryptographic techniques 
and key Identiflcatbn and access methods, none 
teaches or suggests the system claimed herein which 
involves a combination of techniques to prevent illicit 
copying and to enhance tracing of original users. 

SUMMARY OF THE INVENTION 

The present Invention is a method of protecting 
electronicaliy published documents, it involves oper- 
ating a computer system and network for electronic 
publication of documents, including the steps of: a.) 
receiving requests for documents from a plurality of 
users having computers with display devices or prin- 
ters, including with the requests unk)ue user Identifi- 
cation for each of the plurality of users; b.) authenti- 
cating the requests from the plurality of users with a 
copyright server c.) using the copyright server to di- 
rect a document server to act upon proper authenti- 
cation of each request; d.) in response to directton 
from the copyright server, using a document server to 
create uniquely encoded, compressed and encrypted 
documents for each authenticated request, the docu- 
ments having unk^ua encoding corresponding to each 
of the plurality of users, and forwarding the docu- 
ments to each authenticated request user through the 
networic to corresponding agents of each authenticat- 
ed request user, each of the agents being selected 
from display agents and printer agents; and, e.) de- 
crypting and uncompressing the doojments at each 
of the agents and making the documents available for 
use only In response to receiving correct secret keys 
provided by the authenticated request user to the 
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agents. These agents are either pro-installed as soft- 
ware into each of the plurality of users* computers, 
pre-lnstatled as hardware or firmware Into user hard- 
ware selected from display devices and printers, or 
6 are software programs transmitted at the time of use. 

BRIEF DESCRIPTION OF THE DRAWINGS 

The present invention will be mtore fully under- 
go stood when the specification herein is taken in con- 
junction with the appended drawings, wherein: 

Figure 1 illustrates a diagram of the overall archi- 
tecture of the present Invention method of pro- 
tecting electronicaily published materials; 
15 Figure 2 illustrates a specific architecture for a 
present invention method using specialty hard- 
ware; and, 

Figure 3 illustrates a specific architecture for a 
present invention method using specialty soft- 
20 ware. 

DETAILED DESCRIPTION OF THE PRESENT 
INVENTION 

25 1. INTRODUCTION 

The Increased use of facsimile has made the 
electronic transfer of paper documents more accept- 
ed. Electronic mail, electronic bulletin boards and 

30 large networks systems make it possible to distribute 
electronic Information to large groups. Moreover, the 
proliferation of personal computers and workstations, 
the excellent quality of desktop printers and the plum- 
meting cost of storage devtees for large volumes of 

35 electronic data have made it technologically feasible 
to display, print and store documents electronically. 
All of these developments have made electronic puth 
lishing a reality. The electronic distribution of informa- 
tion is faster, less expensive, and requires less effort 

40 than making paper copies and transporting them. 
Other factors that favor electronic infomialion distritn 
ution include the abiiity to use a computer to search 
for specif ic infonmation, and the ability to more easily 
customize what Is being distributed to the recipients. 

45 Eectronic newspapers, magazines and journals are 
poised to supplement, and eventually replace the cur- 
rent paper distributk>n netv/orks. 

The advantages offered by electronic dlstribu- 
tk)ns are also among the primary technk:al impede 

BO ments to the acceptance of electronic docunrtents as 
a replacenrtent for paper versions. One of the major 
technical and economic challenges faced byelectron- 
k: publishing is that of preventing indh^iduals from 
easily copying end illegally dbtributing electronic 

55 documents. It is easier for a person who receives an 
electronic document to forward it to a large group ttran 
It Is for a person who receives a paper copy of the 
same document. In addition, electronic copies are 
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more like the originals than paper copies. When an 
electronic copy is made, the original owner and the re- 
cipient have identical entities. Bootlegged copies of 
electronic documents are II kely to result in major loss- 
es in revenue. 5 

Thus, the present invention is directed to the use 
of cryptographic protocols to discourage or prevent 
the distribution of illicit electronic copies via any avail- 
able distribution and presentation techniques, typi- 
cally, using printers and display devices. The term 10 
"printer" as used herein is intended for broad interpre- 
tation so as to include mechanical and laser printers, 
facsimile machines, copiers, plotters, etc. Likewise, 
"display devices" should be broadly taken to include 
any device that displays documents in any fonm other i5 
than printed form. The present invention involves two 
alternative approaches to making electronic docu- 
ment distribution secure. In each case, the publisher 
encrypts the document with a secret key. In the first 
method, described in Section 3.1, special purpose 20 
hardware or firmware In the printers and display de- 
vices decrypts the docunr>ent. The user only has ac- 
cess to the encrypted version of the document, which 
is not useful to anyone else. 

In the second method, described in Sectkin 3J2, 25 
the document is decrypted in software in the reci- 
pients computer. Special purpose hardware or firm- 
ware is not required, but the bitmap is available to the 
user and can be distributed. In this strategy, the pub- 
lisher encrypts the document, transmits the docu- 30 
ment in a page description language (hereinafter 
"PDL"), such as the well known PostScript language, 
and the decryption program produces a bitmap. The 
publisher can easily modify the Inter-line or Inter- 
word spacings in the PDL version of the document to 35 
make each copy of the document unique. There are 
two elements of this strategy that discourages the 
distribution of illegal copies: 

1 . Illegal copies, that are in vk>lation of the copy- 
right laws, can be traced back to the original own- 40 
er. 

2. The bitmap, or an easily compressed version 
of the bitmap, has more bits than the PDL ver- 
sion, so that It costs an illegal distributor nnors to 
transmit the document than it does the publisher. 45 
This strategy also reduces the transmission cost 

to the publisher for unique document identification. 
The unique Identifiers are easily removed from the 
PDL version, but not U<yrx\ the bitmap. Encryption 
makes it possible for the publisher to transmit the PDL 50 
versbn without giving the user access to it. 

The cost of a processor that Is capable of per- 
forming decryption is not large with respect to cost of 
printers and displays. Therefore, one should suspect 
that the first strategy will probably be used once eleo- $5 
tronic publishing catches on. However, until electron- 
ic publishing is used on a widespread basis, it is un- 
likely that output devices with Internal decryption ca- 



pabilities will exist. The second strategy may provide 
an acceptable means to achieve the purpose of the in- 
vention before specialty hardware is widely accepted. 
Although the second strategy just discourages illegal 
copying and does not prevent it, it nrtakes a wkier 
class of electronic publications possible. Once a rea- 
sonable set of electronic publications Is available, 
special purpose hardware should become reason- 
able. 

2. ARCHITECTURE 

The basic architecture for the distributton of elec- 
tronic documents according to the present invention 
Is shown in F^ure 1. Here, Document Server 3 (trust- 
ed by a publisher) provkJes encoded, encrypted and 
compressed document to User 17. Copyright Server 
7 authenticates requests from User 17 for obtaining 
documents, and this is also trusted by a publisher. 
Display Agent 11 includes software trusted by puth 
llsher which decrypts and displays the document ob- 
tained from Document Server 3. Printing Agent 13 in- 
cludes software trusted by a publisher which de- 
crypts and prints the document obtained from docu- 
ment server. Either Display Agent 11 or Printing Agent 
1 3, or both, or a plurality of these may be available to 
a user. 

Network 9 transports document requests and 
documents to and from the other components. User 
1 7 generates a signed request for docunrtent and will 
need to provide a secret key to display or print a docu- 
ment 

3, PROPOSED EMBODIMENTS 

Two generally separate embodiments are pro- 
posed for making electronic document distributton 
secure. The first approach requires special purpose 
hardware for displaying or printing the electronic 
document, and may be more appropriate when the 
hardware technology progresses to the stage where 
such special purpose devices are inexpensive and 
easily available. The second approach utilizes dis- 
play devices and printers that are available now. How- 
ever, both protocols use the same basic architecture 
and method discussed before. 

3.1 Example 1 

This first embodiment, shown in Figure 2, in- 
volves a straightforward appllcatton of cryptographic 
techniques to send encrypted information betv^n a 
Document Server 103, which is trusted by the pul>- 
lidher, and a trusted Display Agent 111 and/or a trust- 
ed Printing Agent 113. The Display Agent 111 or Print- 
ing Agent 113, containing the secret key that is shared 
with the Copyright Server 107, resides within the spe- 
cial purpose display device 121 or printer 123 de- 
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signed for eldctronic publishing. Thus, Agent means 
the necessary software, hardware, and/or firmware 
to decrypt only In response to specified inputs. These 
devices must be sealed so that it is not easy to make 
copies of the hardware or firmware that contains the s 
secret key or keys. 

When the tJser 1 1 7 wants to view or print a docu- 
ment, he must make a request for a document via net- 
work 109 by using a unique identification, such as a 
credit card numtjer, or other relatively valuable num- 10 
ber that a user would not be willing to give away to 
someone else for illicit purposes. The Copyright Ser- 
ver 107 wlli authenticate the User's request and then 
the Document Server 103 sends out an encrypted 
copy directly to the display device 1 21 or printer 123 is 
available to User Space 115. This docunwnt is en- 
crypted so that only a specific printer or dteplay de- 
vice can decrypt it Since oniy an encrypted docu- 
ment is seen on the network, it is not possible for a 
malicious user to get at the document. Once the dis- 20 
player or printer receives the encrypted document, 
the device decrypts it and displays or prints it. As an- 
other feature for some embodiments of the present 
invention, in order for the User to activate display or 
print functions, the User may be required to input to 25 
the Display or Print Agent, a unique Identification 
number such as was used to make the Initial request. 
In these embodiments, it is possible to prevent the 
distribution of illicit copies. The algorithm used in this 
method to encrypt information could be any standard 30 
algorithm, such as DES (a known private key system- 
Digital Encryption Standanj). However, this ap- 
proach requires special purpose displays and printers 
for electronic publishing, and so may be more appro- 
priate when there is a sufficient set of services and 35 
users to Justify such special purpose hardware. Such 
hardware is well within the skill of the artisan, but the 
economics based on low numbers of users would 
make it difficult to succeed commercially until wide- 
spread electronic publishing occurred. 40 

3.2 Example 2 

In this second approach, cryptographic technl- 
questhatdo not require special purpose hardware are 45 
used. The problem that is encountered when dealing 
with conventional displays and printers is that the in- 
fonmation that Is displayed or printed exists In the re- 
cipient's computer. The recipient can capture the in- 
fonmation that will be displayed, and can distribute so 
that information to as many other printers and dis- 
plays as desired. Instead of trying to prevent the re- 
cipient from redistributing infonrriation. the objective 
will be to discourage the di^ribution of bootlegged 
copies. $$ 

In an earlier work, it was shown that the ability to 
custom tailor copies of the journal for each recipient 
could also be used to Identify the original owner of a 



document. Information that identifies the original 
owner is encoded into the space between the lines 
and words of text or as part of unique shifting or 
changes in word, line and character features. The in- 
tention of the mechanism is to discourage individuals 
from distributing journals in violation of the copyright 
laws. 

A protocol is now described by which documents 
can be distributed electronically to the subscribers 
and the subscribers can be discouraged from dl5trit>- 
uting the documents electronically to non-subscrib- 
ers. The algorithm used to encrypt information could 
be any standard algorithm, like RSA (an algorithm 
publk; key system which is well known- Revere Sha- 
mirez Algorithm). The present invention involves the 
novel application of cryptographic techniques to dis- 
courage the Illegal distributton of electronb docu- 
ments. Since this example does not require special 
purpose hardware, it is believed that this technique 
will help demonstrate the feasibility of electronic 
document distribution, and encourage new services 
in this area. Once there are enough users, special 
purpose hardware will be justified, and a simpler 
method like Example 1 may then be used successful- 
ly from a commercial standpoint. 

3.2.1 Overview of the Protocol 

The protocol is discussed in conjunction with Figure 
3 and works in the follov^ng phases: 

1. Request Generation: user u requests a docu- 
ment by sending a signed message to Copyright 
Server 207 vm Network 209, including document 
details. 

2. Document Transmission: (a) the Copyright 
Server 207 verifies the request and if it is valid, 
it arranges to send the document from the Docu- 
ment Server 203, (b) Document Server 203 
sends the encrypted and compressed PDL ver- 
sion of the document to the User 21 7. The docu- 
ment sent to user u Is also encoded or finger- 
printed with some infonnation unique to u. (Alter- 
natively, this encoding or finger-printing of the 
document may be perfornr>ed at the user end, e.g. 
by the user's printeror display device.) The Copy- 
right Server 207 may also send the Display Agent 
211 and the Printing Agent 213 to the User Space 
215 at this stage. 

3. Document Viewing or Printing: upon receiving 
a request to display (or print) the document, the 
Display Agent 211 or the Printing Agent 213 
prompts the User 217 to type In his/her secret 
key. Su, upon receiving which the agent decrypts 
and decompresses the received PDL document, 
generates a bttmap and sends it to the display de- 
vice 221 or printer 223. 

Details of the Protocol 

Hereinafter, d, c, and u refer to the Document 
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Server, the Copyright Server and the User, respec- 
tively. It is assumed that each user u has a pair of pub- 
lic and secret keys and Su. In addition, the Docu- 
ment/Copyright Server will have a key which will 
be used to encrypt the transmitted documents and 
which will be embedded in the Display and Printing 
Agents so that they can decrypt the received docu- 
ments. 

Request Generation: 

mi(u,c) = [ docunrwnt info, ESy [ o. document 
Irrfo]] 

This is a signed message mi from user u to Copy- 
right Server c requesting a document. Document in- 
fonmation (like journal, title of artictep authors, etc.) is 
sent together with the user ID, u. The user ID u helps 
the Copyright Server to look up the directory to find 
Pu. the publte key of the user, in addition, the user 
signs the clear text with his/her secret key, S^. En- 
cryption E with Sy Is needed to prevent malicious 
users from pretending to be who they are not, to pre- 
vent any tampering of the document request. 

Document Transmission: 

Copyright Server receives mt(u,c), looks up the 
directory for Pu, decrypts ESu [u» [document InfoH, 
and compares the clear text against the decrypted 
text. If they are identical , it sends a message to the 
Document Server to send the document ms{d,u) to 
user. The Copyright Server also sends the Display 
Agent and the Printing Agent to the user as message 
mzicu) at this stage. The Display Agent and the Print- 
ing Agent have embedded in them a key which is 
^u|A^J» i e. the key, encrypted with the public key 
Py of the user. 

nhiCfU) = [[Display Agent],[Printing Agent]] 
mz{d,u) = E^fx nCompressed Document]] 
The Display and Printing Agents are not encrypt- 
ed because nobody other than a specific user u can 
use them for decrypting an encrypted document. 

The document sent to the user is a compressed 
PDL version that Is encrypted with M^, Even If user u 
distributed the Display or Printing Agents, together 
with the encrypted document, it would be of no use 
unless the secret key Su vras divulged as well be- 
cause the key M^, with which the document Is encrypt- 
ed, cannot be generated from O without S^, 

Document Viewing or Printing: 

To view (or print) a document, the Display (Print- 
ing) Agent first prompts the user for his secret key Sy. 
The embedded key 0 is decrypted with Su to obtain 
the key My. with which the compressed document is 
decrypted. This is further decompressed, converted 
to a bitmap and sent to the screen (printer). 



The above protocol will allow a legitimate user to 
request a docun>ent and view It on his/her termi- 
nal/workstation as nr>any times as desired. IHowever. 
it will prevent an illegal user from doing the SBxm 

6 even if he/she happens to copy the Display/Printing 
Agents and the encrypted document from the legal 
user. The underlying assumption In the protocol Is 
that the user's secret key, S^, is too important for the 
user to give up. If the secret key is the same as used 

10 for electronic mail signatures, system login or credit- 
card purchases, there is a strong disincentive to giv- 
ing it away to others. 

Additional precautions can be txiilt In by some- 
how restricting the docurront to be displayed or print- 

16 ed on some pre-registered hardware. But thie is not 
desirable as it will tie down the user to specific ma- 
chines and restrict his/her mobility. 

Once the document has been decrypted and de- 
compressed, it is available as a bitmap in the user's 

20 computer. Recall that (1) the bitmap is finger-printed 
with Information specific to user, u. and (2) the bitmap 
is much larger than the compressed PDL versbn of 
document transmitted by the publisher. So, even if 
the user is willing to capture and transmit the much 

25 larger bitmap file, the user can only do it at the risk of 
incriminating hinDseif, unless the user makes the sig- 
nificantly larger effort required to erase the finger- 
print from the bitmap. 

30 3.2,2. Use-Once Progranrts as a Key-Hiding 
Mechanism 

As pointed out in Example 2, critical programs are 
required to be executed under the user control to dis- 
ss play and print documents. For example, there is a dis- 
play or printing agent whk:h is a trusted program with 
the publisher's magic key A^x hidden in it. During exe- 
cutk}n, the display (printing) agent picks up ESJlMji 
from the right location, decrypts it using Sy provided 
40 by the user u and used it to decrypt the encrypted 
document. Note that if the user can discover by 
analyzing the code for display (printing) agent and 
stopping the execution at the right point, then the 
whole purpose of sending encrypted docunf>ents is 
45 defeated. Since thte kind of reverse engineering can- 
not be completely prevented, the payoff of reverse 
engineering is reduced by sending trusted programs 
that do the same job but look different for each user. 
If documents and Display/Printing agents are distrib- 
50 uted through networks, it is relatively easy to gener- 
ate a unique copy for each recipient 

The use of use-once programs also has the ad- 
vantage that the origin of program can be readily 
traced, Modifying a binary executable to create an- 
55 other working program requires a deep understand- 
ing of the program structure and any seif-protectton 
mechanisms (checksums) a program may employ. 
Compared to protecting printed articles, identifying 
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programs is relatively easy. 

For example, four differenl levels of security may 
be used: 

1. all users have the same Display/Printing 
Agents containing an algorithm that derives a key s 
from a system identifier; 

2. the Dispiay/Prlnting Agent are sent once (or at 
some time interval but unique for each user); 

3. the Display/Printing Agents are the same for 
each document and are transmitted with each io 
document; 

4. the Display/Printing Agents are unique and are 
transmitted with each document 

A number of techniques can be used for creating 
unique, but equivalent programs automatically at the is 
compile or link stage. For example: 

(1) the linker can reorder text and data segments; 

(2) the compiler can be instructed to randomly 
optimize certain sections of code; 

(3) sections of the code can be replaced by f unc- 20 
tlonally equivalent, different algorithms and, 

(4) the compiler can change the register alloca- 
tion sequence. 

Note that more elaborate anrangements for pro- 
tecting RAM access patterns and contents may be 2S 
added, at the cost of reduced execution efficiency. In 
addition, standard techniques of hkiing tell-tale code 
sequences (such as replacing system calls to con- 
stant addresses by computed calls) should be used. 

Obviously, numerous modifications and varia- 30 
tlons of the present Invention are possible In light of 
the above teachings. It is therefbre understood that 
within the scope of the appended claims, the Inven- 
tion may be practiced otherwise than as specifically 
described herein. 35 



Claims 

1. A method of protecting elect nanicaiiy published 40 
documents, which comprises: 

operating a computer system and network 
for electronic publication of documents, and in- 
cluding therein the steps of: 

a. ) receiving requests for documents from a 45 
plurality of users having computers with dis- 
play devices or printers, said computers being 
connected by said network to sakj computer 
system, said requests including unique user 
identification for each of said plurality of so 
users; 

b. ) authenticating said requests from said 
plurality of users with a copyright server; 

c. ) using said copyright server to direct a 
document server to act upon proper authenti- 55 
cation of each request; 

d. ) in response to direction from said copy- 
right server, using a document server to cre- 



ate encrypted docunr>ent& along with a unique 
identification for each authenticated request 
and forwarding said documents to each au- 
thenticated request user through said net- 
work to corresponding agents of each authen- 
ticated request user, each of said agents be- 
ing selected from display agents and printer 
agents; 

6.) encoding said documents so that each 
document created is uniquely encoded based 
upon said unique identification; and, 
f.) decrypting said documents at each of said 
agents and making sakJ documents available 
for use only in response to receiving correct 
secret keys provided by said authenticated re- 
quest user to said agents. 

2. The method of claim 1 wherein said document 
server also compresses said documents and 
said agents uncompress said documents In re- 
sponse to receh^lng a correct secret key provided 
by said authentkrated request user. 

3. The method of daim 1 wherein said plurality of 
users have the sanr>8 agents that uses an algo- 
rithm that derives a key from a system identifier 
to allow decryption and display In subsequent re- 
sponse to a unique, correct user secret key. 

4. The method of daim 1 wherein said pluraltty of 
users receive agents with each document for- 
warded, all such agents toeing the same for a gh/- 
en document and different from publicatwn to 
publication. 

5. The method of daim 1 wherein said plurality of 
users receive agents with each document for- 
warded, ail such agents being different from one 
another. 

6. A method of protecting electronically published 
documents, which comprises: 

operating a computer system and network 
for electronic publication of documents and In- 
cluding therein, the steps of: 

(a) receiving requests for documents from a 
plurality of users having computers with dis- 
play devices or printers, sakJ computers being 
connected by said network to said computer 
system, said requests including unique user 
identificatbn for each of said plurality of 
users; 

(b) authenticating sard requests from sakj 
plurality of users with a copyright server; 

(c) using saki copyright serv^ to direct a 
document server to act upon proper authenU- 
cation of each request; 

(d) In response to direction from said copy- 
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right server, using a document server to cre- 
ate compressed and encrypted documents 
for each authenticated request, and forward- 
ing said documents to each authenticated re- 
quest user through said network to corre- s 
spending agents of each authenticated re- 
quest user, each of said agents being select- 
ed from display agents and printer agents; 

(e) encoding said documents so that each 
document created is uniquely encoded with 10 
encoding corresponding to each of said plur- 
ality of users; and, 

(f) decrypting and uncompressing said docu- 
ments at each of said agents and making said 
documents available for use only in response is 
to receiving correct secret keys provided by 

said authentk^ated request user to said 
agents. 

7. The method of claim 1 or 6 wherein said agents 20 
are pre- Installed as software Into each of said 
plurality of users' computers. 

8. The method of claim 1 or 6 wherein said agents 

are software programs which are transmitted to 25 
sakJ plurality of users only after requests have 
been authenticated. 

9. The method of daim 1 or 6 wherein said agents 

are pre- Installed as computerware selected from 30 
hardware and firmware. Into user hardware se- 
lected from display devices and printers. 

1 0. The method of claim 1 or 6 wherein each of said 
agents has a unique internal code corresponding 35 
to its user. 

11. The method of daim 1 , 6, 7 or 9 wherein each of 
sakj agents Is capable of decrypting only a sin- 
gle, uniquely encoded version of documents pub- 40 
lished. 

12. The method of daim 6 wherein said agents are 
pre- installed as firmware Into user hardware se- 
lected from display devices and printers, and 45 
wherein each of said agents is capable of de- 
crypting only a single, unk^uely encoded versk)n 

of documents published. 

13. The method of daim 1 or 6 wherein said docu- 50 
ments are uniquely encoded by the document 
server. 

14 The method of daim 1 or 6 wherein said docu- 
ments are uniquely encoded after being forward- 55 
ed to each authenticated requ^t user. 
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